21.01.05, 21:03
kto mi powie, co mam usunac?

Logfile of HijackThis v1.99.0
Scan saved at 21:02:52, on 05-01-21
Platform: Windows 98 SE (Win9x 4.10.2222A)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\SYSTEM\MDM.EXE
C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\RUNDLL32.EXE
C:\WINDOWS\SYSTEM\RPCSS.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\MIXER.EXE
C:\WINDOWS\SYSTEM\HPZTSB05.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAM FILES\DESKAD SERVICE\DESKADSERV.EXE
C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE
C:\WINDOWS\SHCH.EXE
C:\WINDOWS\SSSASASB32.EXE
C:\PROGRAM FILES\DESKAD SERVICE\DESKADKEEP.EXE
C:\PROGRAM FILES\COMMON FILES\ACD SYSTEMS\EN\DEVDETECT.EXE
C:\PROGRAM FILES\VBOUNCER\VIRTUALBOUNCER.E XE
C:\PROGRAM FILES\GADU-GADU\GG.EXE
C:\PROGRAM FILES\SAGEM\SAGEM F@ST 800-840\DSLMON.EXE
C:\PROGRAM FILES\OPENOFFICE.ORG1.1.4\PROGR AM\SOFFICE.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\WINDOWS\SYSTEM\RNAAPP.EXE
C:\WINDOWS\SYSTEM\TAPISRV.EXE
C:\WINDOWS\PULPIT\HIJACKTHIS.EX E

O1 - Hosts: 69.20.16.183 auto.search.msn.com
O1 - Hosts: 69.20.16.183 search.netscape.com
O1 - Hosts: 69.20.16.183 ieautosearch
O1 - Hosts: 69.20.16.183 ieautosearch
O1 - Hosts: 69.20.16.183 ieautosearch
O1 - Hosts: 69.20.16.183 ieautosearch
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9 082467} -
C:\WINDOWS\SYSTEM\MSDXM.OCX
O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [internat.exe] internat.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe
powrprof.dll,LoadCurrentPwrSche me
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [Zasobnik systemowy] SysTray.Exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM\hpztsb05.exe
O4 - HKLM\..\Run: [DeskAd Service] C:\PROGRAM FILES\DESKAD SERVICE\DESKADSERV.EXE
O4 - HKLM\..\Run: [ashMaiSv] C:\PROGRA~1\ALWILS~1\AVAST4\ash maisv.exe
O4 - HKLM\..\Run: [SheduIer] C:\WINDOWS\shch.exe /i
O4 - HKLM\..\Run: [sssasasb32] C:\WINDOWS\sssasasb32.exe
O4 - HKLM\..\Run: [Device Detector] DEVDETECT.EXE -autorun
O4 - HKLM\..\Run: [VBouncer] C:\PROGRA~1\VBOUNCER\VirtualBou ncer.exe
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe
powrprof.dll,LoadCurrentPwrSche me
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [Machine Debug Manager] C:\WINDOWS\SYSTEM\MDM.EXE
O4 - HKLM\..\RunServices: [avast!] C:\Program Files\Alwil
Software\Avast4\ashServ.exe
O4 - HKCU\..\Run: [Gadu-Gadu] "C:\PROGRAM FILES\GADU-GADU\GG.EXE" /tray
O4 - Startup: OpenOffice.org 1.1.4.lnk = C:\Program
Files\OpenOffice.org1.1.4\progr am\quickstart.exe
O4 - Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
Office\Office\OSA9.EXE
O15 - Trusted IP range: 213.159.117.133 (HKLM)
O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8 E6BAD6} -
ms-its:mhtml:file://c:\nosuxxx.mht!http://www.kazaalite.pl/stats/274xa.chm::/bridge-c274.cab
Obserwuj wątek
    • m.gregor Re: Loga HJ 21.01.05, 21:35
      > O1 - Hosts: 69.20.16.183 auto.search.msn.com
      > O1 - Hosts: 69.20.16.183 search.netscape.com
      > O1 - Hosts: 69.20.16.183 ieautosearch
      > O1 - Hosts: 69.20.16.183 ieautosearch
      > O1 - Hosts: 69.20.16.183 ieautosearch
      > O1 - Hosts: 69.20.16.183 ieautosearch
      > O4 - HKLM\..\Run: [DeskAd Service] C:\PROGRAM FILES\DESKAD
      > SERVICE\DESKADSERV.EXE (ale to najlepiej odinstalowac wczesniej przez
      Dodaj/usun programy w panelu sterowania)
      > O4 - HKLM\..\Run: [SheduIer] C:\WINDOWS\shch.exe /i
      > O4 - HKLM\..\Run: [sssasasb32] C:\WINDOWS\sssasasb32.exe
      > O4 - HKLM\..\Run: [Device Detector] DEVDETECT.EXE -autorun
      > O4 - HKLM\..\Run: [VBouncer] C:\PROGRA~1\VBOUNCER\VirtualBou ncer.exe
      > O15 - Trusted IP range: 213.159.117.133 (HKLM)
      > O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8 E6BAD6} -
      > ms-its:mhtml:file://c:\nosuxxx.mht!http://www.kazaalite.pl/stats/274xa.chm::
      > /bridge-c274.cab
      • gixera Re: Loga HJ 21.01.05, 21:42
        jak teraz?
        Logfile of HijackThis v1.99.0
        Scan saved at 21:43:40, on 05-01-21
        Platform: Windows 98 SE (Win9x 4.10.2222A)
        MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

        Running processes:
        C:\WINDOWS\SYSTEM\KERNEL32.DLL
        C:\WINDOWS\SYSTEM\MSGSRV32.EXE
        C:\WINDOWS\SYSTEM\SPOOL32.EXE
        C:\WINDOWS\SYSTEM\MPREXE.EXE
        C:\WINDOWS\SYSTEM\mmtask.tsk
        C:\WINDOWS\SYSTEM\MSTASK.EXE
        C:\WINDOWS\SYSTEM\MDM.EXE
        C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE
        C:\WINDOWS\EXPLORER.EXE
        C:\WINDOWS\RUNDLL32.EXE
        C:\WINDOWS\SYSTEM\RPCSS.EXE
        C:\WINDOWS\TASKMON.EXE
        C:\WINDOWS\SYSTEM\SYSTRAY.EXE
        C:\WINDOWS\MIXER.EXE
        C:\WINDOWS\SYSTEM\HPZTSB05.EXE
        C:\WINDOWS\SYSTEM\DDHELP.EXE
        C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE
        C:\WINDOWS\SSSASASB32.EXE
        C:\PROGRAM FILES\COMMON FILES\ACD SYSTEMS\EN\DEVDETECT.EXE
        C:\PROGRAM FILES\VBOUNCER\VIRTUALBOUNCER.E XE
        C:\PROGRAM FILES\GADU-GADU\GG.EXE
        C:\PROGRAM FILES\SAGEM\SAGEM F@ST 800-840\DSLMON.EXE
        C:\PROGRAM FILES\OPENOFFICE.ORG1.1.4\PROGR AM\SOFFICE.EXE
        C:\WINDOWS\SYSTEM\WMIEXE.EXE
        C:\WINDOWS\SYSTEM\RNAAPP.EXE
        C:\WINDOWS\SYSTEM\TAPISRV.EXE
        C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE
        C:\WINDOWS\SYSTEM\WINOA386.MOD
        C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE\WINWORD.EXE
        C:\WINDOWS\PULPIT\HIJACKTHIS.EX E

        O1 - Hosts: 69.20.16.183 auto.search.msn.com
        O1 - Hosts: 69.20.16.183 search.netscape.com
        O1 - Hosts: 69.20.16.183 ieautosearch
        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9 082467} -
        C:\WINDOWS\SYSTEM\MSDXM.OCX
        O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
        O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
        O4 - HKLM\..\Run: [internat.exe] internat.exe
        O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
        O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrSche me
        O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
        O4 - HKLM\..\Run: [Zasobnik systemowy] SysTray.Exe
        O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM\hpztsb05.exe
        O4 - HKLM\..\Run: [ashMaiSv] C:\PROGRA~1\ALWILS~1\AVAST4\ash maisv.exe
        O4 - HKLM\..\Run: [MsnExplorer] C:\WINDOWS\svchst.exe /i
        O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe
        powrprof.dll,LoadCurrentPwrSche me
        O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
        O4 - HKLM\..\RunServices: [Machine Debug Manager] C:\WINDOWS\SYSTEM\MDM.EXE
        O4 - HKLM\..\RunServices: [avast!] C:\Program Files\Alwil
        Software\Avast4\ashServ.exe
        O4 - HKCU\..\Run: [Gadu-Gadu] "C:\PROGRAM FILES\GADU-GADU\GG.EXE" /tray
        O4 - Startup: OpenOffice.org 1.1.4.lnk = C:\Program
        Files\OpenOffice.org1.1.4\progr am\quickstart.exe
        O4 - Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
        O4 - Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
        Office\Office\OSA9.EXE
        O15 - Trusted IP range: 213.159.117.133 (HKLM)
    • Gość: piecyk gazowy Re: Loga HJ IP: *.tpnet.pl / *.tpnet.pl 21.01.05, 21:44
      Do wywalenia:

      > O1 - Hosts: 69.20.16.183 auto.search.msn.com
      > O1 - Hosts: 69.20.16.183 search.netscape.com
      > O1 - Hosts: 69.20.16.183 ieautosearch
      > O1 - Hosts: 69.20.16.183 ieautosearch
      > O1 - Hosts: 69.20.16.183 ieautosearch
      > O1 - Hosts: 69.20.16.183 ieautosearch

      > O4 - HKLM\..\Run: [DeskAd Service] C:\PROGRAM FILES\DESKAD
      SERVICE\DESKADSERV.E
      > XE

      > O4 - HKLM\..\Run: [SheduIer] C:\WINDOWS\shch.exe /i
      > O4 - HKLM\..\Run: [sssasasb32] C:\WINDOWS\sssasasb32.exe
      > O4 - HKLM\..\Run: [Device Detector] DEVDETECT.EXE -autorun
      > O4 - HKLM\..\Run: [VBouncer] C:\PROGRA~1\VBOUNCER\VirtualBou ncer.exe
      > O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe
      > powrprof.dll,LoadCurrentPwrSche me

      > O15 - Trusted IP range: 213.159.117.133 (HKLM)
      > O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8 E6BAD6} -
      > ms-its:mhtml:file://c:\nosuxxx.mht!
      www.kazaalite.pl/stats/274xa.chm::/bridge-c274.cab
      No i...
      www.searchengines.pl/phpbb203/index.php?showtopic=12510&st=0&p=109496&#entry109496
      • gixera jak teraz? 21.01.05, 21:55
        Logfile of HijackThis v1.99.0
        Scan saved at 21:56:20, on 05-01-21
        Platform: Windows 98 SE (Win9x 4.10.2222A)
        MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

        Running processes:
        C:\WINDOWS\SYSTEM\KERNEL32.DLL
        C:\WINDOWS\SYSTEM\MSGSRV32.EXE
        C:\WINDOWS\SYSTEM\SPOOL32.EXE
        C:\WINDOWS\SYSTEM\MPREXE.EXE
        C:\WINDOWS\SYSTEM\mmtask.tsk
        C:\WINDOWS\SYSTEM\MSTASK.EXE
        C:\WINDOWS\SYSTEM\MDM.EXE
        C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE
        C:\WINDOWS\EXPLORER.EXE
        C:\WINDOWS\RUNDLL32.EXE
        C:\WINDOWS\SYSTEM\RPCSS.EXE
        C:\WINDOWS\TASKMON.EXE
        C:\WINDOWS\SYSTEM\SYSTRAY.EXE
        C:\WINDOWS\MIXER.EXE
        C:\WINDOWS\SYSTEM\HPZTSB05.EXE
        C:\WINDOWS\SYSTEM\DDHELP.EXE
        C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE
        C:\WINDOWS\SSSASASB32.EXE
        C:\PROGRAM FILES\COMMON FILES\ACD SYSTEMS\EN\DEVDETECT.EXE
        C:\PROGRAM FILES\GADU-GADU\GG.EXE
        C:\PROGRAM FILES\SAGEM\SAGEM F@ST 800-840\DSLMON.EXE
        C:\PROGRAM FILES\OPENOFFICE.ORG1.1.4\PROGR AM\SOFFICE.EXE
        C:\WINDOWS\SYSTEM\WMIEXE.EXE
        C:\WINDOWS\SYSTEM\RNAAPP.EXE
        C:\WINDOWS\SYSTEM\TAPISRV.EXE
        C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE
        C:\WINDOWS\SYSTEM\WINOA386.MOD
        C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE\WINWORD.EXE
        C:\WINDOWS\PULPIT\HIJACKTHIS.EX E

        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9 082467} -
        C:\WINDOWS\SYSTEM\MSDXM.OCX
        O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
        O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
        O4 - HKLM\..\Run: [internat.exe] internat.exe
        O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
        O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
        O4 - HKLM\..\Run: [Zasobnik systemowy] SysTray.Exe
        O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\SYSTEM\hpztsb05.exe
        O4 - HKLM\..\Run: [ashMaiSv] C:\PROGRA~1\ALWILS~1\AVAST4\ash maisv.exe
        O4 - HKLM\..\Run: [MsnExplorer] C:\WINDOWS\svchst.exe /i
        O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
        O4 - HKLM\..\RunServices: [Machine Debug Manager] C:\WINDOWS\SYSTEM\MDM.EXE
        O4 - HKLM\..\RunServices: [avast!] C:\Program Files\Alwil
        Software\Avast4\ashServ.exe
        O4 - HKCU\..\Run: [Gadu-Gadu] "C:\PROGRAM FILES\GADU-GADU\GG.EXE" /tray
        O4 - Startup: OpenOffice.org 1.1.4.lnk = C:\Program
        Files\OpenOffice.org1.1.4\progr am\quickstart.exe
        O4 - Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
        O4 - Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
        Office\Office\OSA9.EXE
        O15 - Trusted IP range: 213.159.117.133 (HKLM)


        Yo mi sie nie kasuje: O15 - Trusted IP range: 213.159.117.133 (HKLM)

Nie masz jeszcze konta? Zarejestruj się


Nakarm Pajacyka